Set up Face ID as MFA in Passport Login
Enable Face ID as a second authentication factor for teachers or students in Passport Login, and reset it for individual users when needed.
In this article
Face ID is a camera-based face recognition factor available as the second step in Passport Login. Admins configure it at the organization level; users complete their own enrollment the first time they reach the Face ID step at sign-in. Face ID is recommended for younger students as a quick, user-friendly alternative to typing or scanning.
Requirements
- Primary District Admin permissions.
- Passport Login enabled for your organization.
- At least one supported third-party IdP activated.
- Camera-equipped devices for each user who will use Face ID.
Limitations
- Face ID can only be used as a Second Factor, not a First Factor.
- Available for teacher and student accounts only. Not available on admin accounts.
- Face ID performance may vary depending on camera angle and lighting conditions.
Activate Face ID as a second factor
- Navigate to Connect > Administration > Login Methods > Passport Login.

- (If Passport Login is disabled) Turn on the Activate SchoolDay Login toggle.
- Under Teacher Authentication or Student Authentication:
- First Factor: select the primary authentication method.
- Second Factor: select Face ID.
- Grace Period (optional): enter a time window during which users can sign in without completing MFA.
- Click Save.
Result: Face ID is now required as the second factor for the selected user group. Users are prompted to enroll their face the first time they sign in and reach the Face ID step.
Reset Face ID for a user
Reset Face ID when a user's recognition fails consistently, or after a physical change that affects accuracy. There are two paths.
From Data Browsing
- Navigate to Connect > Data Browsing.
- Locate and open the student or teacher record.
- Go to the Access Management tab.

- Click Reset Face ID.
Note: If the Reset Face ID button is not visible, the user has not yet enrolled Face ID.
From ID Card Administration Tool
- From the SchoolDay main page, open the ID Card Administration Tool.
- Select the school.
- Locate the student or teacher.
- Click the three-dot menu and select Reset Face ID.

Result: The user's Face ID enrollment is cleared. They are prompted to re-enroll the next time they sign in and reach the Face ID step.
Troubleshooting
|
Symptom |
Cause |
Fix |
|---|---|---|
|
Face ID not available in Second Factor dropdown |
Passport Login not enabled |
Turn on Activate SchoolDay Login and save |
|
User cannot complete Face ID enrollment |
Device has no camera |
Confirm the device has a functioning webcam |
|
Face ID consistently fails for a user |
Camera angle, lighting, or a physical change |
Reset Face ID using one of the two methods above |
|
Reset Face ID button missing in Access Management |
User has not yet enrolled Face ID |
No action needed — the button appears only after enrollment |
Related articles
- Configure MFA methods for users
- Check user MFA status
- Enable Passport Login for your organization
-
Sign in with Face ID (for teachers and students)